From a1722ca86d0df42a3ed2232567d46cb7cdd58312 Mon Sep 17 00:00:00 2001 From: Jordan Owens Date: Tue, 2 Aug 2022 13:48:40 -0400 Subject: [PATCH] Resolve security warnings for dependencies --- Gemfile | 2 +- sinatra-contrib/Gemfile | 4 ++-- sinatra-contrib/sinatra-contrib.gemspec | 2 +- 3 files changed, 4 insertions(+), 4 deletions(-) diff --git a/Gemfile b/Gemfile index 783f9197..e6df8430 100644 --- a/Gemfile +++ b/Gemfile @@ -30,7 +30,7 @@ gem 'activesupport', '~> 6.1' gem 'asciidoctor' gem 'builder' -gem 'commonmarker', '~> 0.20.0', platforms: [:ruby] +gem 'commonmarker', '~> 0.23.4', platforms: [:ruby] gem 'erubi' gem 'eventmachine' gem 'falcon', '~> 0.40', platforms: [:ruby] diff --git a/sinatra-contrib/Gemfile b/sinatra-contrib/Gemfile index af41c9e5..2dba749e 100644 --- a/sinatra-contrib/Gemfile +++ b/sinatra-contrib/Gemfile @@ -24,8 +24,8 @@ group :development, :test do platform :ruby do gem 'execjs', '2.0.0' - gem 'nokogiri', '1.5.10' - gem 'redcarpet', '2.3.0' + gem 'nokogiri', '1.13.6' + gem 'redcarpet', '3.5.1' gem 'yajl-ruby' end diff --git a/sinatra-contrib/sinatra-contrib.gemspec b/sinatra-contrib/sinatra-contrib.gemspec index f5248b69..3a05e395 100644 --- a/sinatra-contrib/sinatra-contrib.gemspec +++ b/sinatra-contrib/sinatra-contrib.gemspec @@ -51,7 +51,7 @@ RubyGems 2.0 or newer is required to protect against public gem pushes. You can s.add_development_dependency 'markaby' s.add_development_dependency 'nokogiri' s.add_development_dependency 'rack-test', '~> 2' - s.add_development_dependency 'rake', '< 11' + s.add_development_dependency 'rake', '>= 12.3.3' s.add_development_dependency 'redcarpet' s.add_development_dependency 'rspec', '~> 3' s.add_development_dependency 'slim'